/l3/users/27-07-2009/nt-fbsdnet/fbsd4.net.nt/root :1 :2 :3 :4 :5 :6 :7 :8 :9 :10 :11 :12 :13 :14 :15 :16 :17 :18 :19 |
|
#cd /etc/
|
#vim rc
![]() |
#vim rc
![]() |
#vim rc
![]() |
#vim rc.conf
![]() |
#vim rc.conf
![]() |
#vim rc.conf
![]() |
#vim rc
![]() |
#vim rc.conf
|
#vim /etc/rc.conf
|
#vim /etc/defaults/rc.conf
![]() |
#vim /etc/defaults/rc.conf
|
#ls .ssh/authorized_keys
.ssh/authorized_keys |
#less .ssh/authorized_keys
![]() |
#less .ssh/authorized_keys
|
#vi ssh/authorized_keys/
![]() |
#vi ssh/authorized_keys/
![]() |
#vi /home/user/ized_keys
![]() --- /tmp/l3-saved-1183.5081.26736 2009-08-05 17:53:57.000000000 +0300 +++ /home/user/.ssh/authorized_keys 2009-08-05 17:54:02.000000000 +0300 @@ -1,2 +1 @@ ssh-dss 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 root@fbsd5.net.nt -ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA62af/817pALV80q3pXeJWJ9N+IXk/8ONG2oYEjVdeFH0jndcgPisGPemX6sJFDhDA0sxMMi5iE/DD6k2XvcxZDq9lMbv5DGnHOXItzniiwNcR+131E+r3AjAKaqQHJfBEAtaLJZBPBa+DxRtSONa1b6W0jd+VmKyjVhy+HfP4pLvo8F/f7QsTkIFVAx0HQRwJdmOv/IybTMZrp2Q5gMS8tz9qnUsF/bMUe/lTKu20ZQyhEn1xCXFpURO2gNb9jIXcWGuuMmoy4p0s/srLkaCyK//+YKvjR3ppZCo/pyvZ1i/ZKSX8yOfQjcvcC7r/+zHm4AxZfChn/Dm02NaRrDLpw== root@fbsd5.net.nt |
#vi /home/user/ized_keys
--- /tmp/l3-saved-1183.5081.26736 2009-08-05 17:53:57.000000000 +0300 +++ /home/user/.ssh/authorized_keys 2009-08-05 17:54:02.000000000 +0300 @@ -1,2 +1 @@ ssh-dss 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 root@fbsd5.net.nt -ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA62af/817pALV80q3pXeJWJ9N+IXk/8ONG2oYEjVdeFH0jndcgPisGPemX6sJFDhDA0sxMMi5iE/DD6k2XvcxZDq9lMbv5DGnHOXItzniiwNcR+131E+r3AjAKaqQHJfBEAtaLJZBPBa+DxRtSONa1b6W0jd+VmKyjVhy+HfP4pLvo8F/f7QsTkIFVAx0HQRwJdmOv/IybTMZrp2Q5gMS8tz9qnUsF/bMUe/lTKu20ZQyhEn1xCXFpURO2gNb9jIXcWGuuMmoy4p0s/srLkaCyK//+YKvjR3ppZCo/pyvZ1i/ZKSX8yOfQjcvcC7r/+zHm4AxZfChn/Dm02NaRrDLpw== root@fbsd5.net.nt |
#:w
![]() usbd_enable="YES" inetd_enable="" defaultrouter="192.168.16.254" ifconfig_re0="inet 192.168.16.24 netmask 255.255.255.0" ifconfig_re1="inet 192.168.54.1 netmask 255.255.255.224" hostname="fbsd4.net.nt" static_routes="54_32 54_64 54_96 54_128" route_54_32="-net 192.168.54.32/27 192.168.54.30" route_54_64="-net 192.168.54.64/27 192.168.54.30" route_54_96="-net 192.168.54.96/27 192.168.54.30" route_54_128="-net 192.168.54.128/27 192.168.54.30" |
#:w
![]() usbd_enable="YES" inetd_enable="" defaultrouter="192.168.16.254" ifconfig_re0="inet 192.168.16.24 netmask 255.255.255.0" ifconfig_re1="inet 192.168.54.1 netmask 255.255.255.224" hostname="fbsd4.net.nt" static_routes="54_32 54_64 54_96 54_128" route_54_32="-net 192.168.54.32/27 192.168.54.30" route_54_64="-net 192.168.54.64/27 192.168.54.30" route_54_96="-net 192.168.54.96/27 192.168.54.30" route_54_128="-net 192.168.54.128/27 192.168.54.30" |
#:w
![]() usbd_enable="YES" inetd_enable="" defaultrouter="192.168.16.254" ifconfig_re0="inet 192.168.16.24 netmask 255.255.255.0" ifconfig_re1="inet 192.168.54.1 netmask 255.255.255.224" hostname="fbsd4.net.nt" static_routes="54_32 54_64 54_96 54_128" route_54_32="-net 192.168.54.32/27 192.168.54.30" route_54_64="-net 192.168.54.64/27 192.168.54.30" route_54_96="-net 192.168.54.96/27 192.168.54.30" route_54_128="-net 192.168.54.128/27 192.168.54.30" |
#:w
usbd_enable="YES" inetd_enable="" defaultrouter="192.168.16.254" ifconfig_re0="inet 192.168.16.24 netmask 255.255.255.0" ifconfig_re1="inet 192.168.54.1 netmask 255.255.255.224" hostname="fbsd4.net.nt" static_routes="54_32 54_64 54_96 54_128" route_54_32="-net 192.168.54.32/27 192.168.54.30" route_54_64="-net 192.168.54.64/27 192.168.54.30" route_54_96="-net 192.168.54.96/27 192.168.54.30" route_54_128="-net 192.168.54.128/27 192.168.54.30" |
#vim /etc/rc.conf
![]() --- /tmp/l3-saved-1086.13613.29068 2009-08-05 17:54:35.000000000 +0300 +++ /etc/rc.conf 2009-08-05 17:55:36.000000000 +0300 @@ -28,9 +28,9 @@ #natd_enable="YES" # ### Basic network and firewall/security options: ### -#firewall_enable="YES" # Set to YES to enable firewall functionality +firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall -firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) +#firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) firewall_quiet="NO" # Set to YES to suppress rule display firewall_logging="NO" # Set to YES to enable events logging firewall_flags="" # Flags passed to ipfw when type is a file |
#vim /etc/rc.conf
--- /tmp/l3-saved-1086.13613.29068 2009-08-05 17:54:35.000000000 +0300 +++ /etc/rc.conf 2009-08-05 17:55:36.000000000 +0300 @@ -28,9 +28,9 @@ #natd_enable="YES" # ### Basic network and firewall/security options: ### -#firewall_enable="YES" # Set to YES to enable firewall functionality +firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall -firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) +#firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) firewall_quiet="NO" # Set to YES to suppress rule display firewall_logging="NO" # Set to YES to enable events logging firewall_flags="" # Flags passed to ipfw when type is a file |
#xinetd_enable="YES"
![]() ifconfig_re1="inet 192.168.54.1 netmask 255.255.255.224" hostname="fbsd4.net.nt" static_routes="54_32 54_64 54_96 54_128" route_54_32="-net 192.168.54.32/27 192.168.54.30" route_54_64="-YES"192.168.54.64/27 192.168.54.30" route_54_96="-net 192.168.54.96/27 192.168.54.30" route_54_128="-net 192.168.54.128/27 192.168.54.30" xinetd_enable="YES" inetd_enable="YES" xinetd_enable="NO" "/etc/rc.conf" 27 lines, 794 characters written |
#xinetd_enable="YES"
![]() ifconfig_re1="inet 192.168.54.1 netmask 255.255.255.224" hostname="fbsd4.net.nt" static_routes="54_32 54_64 54_96 54_128" route_54_32="-net 192.168.54.32/27 192.168.54.30" route_54_64="-YES"192.168.54.64/27 192.168.54.30" route_54_96="-net 192.168.54.96/27 192.168.54.30" route_54_128="-net 192.168.54.128/27 192.168.54.30" xinetd_enable="YES" inetd_enable="YES" xinetd_enable="NO" "/etc/rc.conf" 27 lines, 794 characters written |
#xinetd_enable="YES"
ifconfig_re1="inet 192.168.54.1 netmask 255.255.255.224" hostname="fbsd4.net.nt" static_routes="54_32 54_64 54_96 54_128" route_54_32="-net 192.168.54.32/27 192.168.54.30" route_54_64="-YES"192.168.54.64/27 192.168.54.30" route_54_96="-net 192.168.54.96/27 192.168.54.30" route_54_128="-net 192.168.54.128/27 192.168.54.30" xinetd_enable="YES" inetd_enable="YES" xinetd_enable="NO" "/etc/rc.conf" 27 lines, 794 characters written |
#vim /etc/ipfw.conf
![]() --- /tmp/l3-saved-1086.11830.22452 2009-08-05 17:57:16.000000000 +0300 +++ /etc/ipfw.conf 2009-08-05 17:58:00.000000000 +0300 @@ -1,2 +1,3 @@ add allow ip from any to any +add allow tcp from any to any add allow tcp from any to me 5902 |
#vim /etc/ipfw.conf
--- /tmp/l3-saved-1086.11830.22452 2009-08-05 17:57:16.000000000 +0300 +++ /etc/ipfw.conf 2009-08-05 17:58:00.000000000 +0300 @@ -1,2 +1,3 @@ add allow ip from any to any +add allow tcp from any to any add allow tcp from any to me 5902 |
#su -user
![]() su: illegal option -- u usage: su [-] [-flms] [-c class] [login [args]] |
#su -user
![]() su: illegal option -- u usage: su [-] [-flms] [-c class] [login [args]] |
#vim /etc/rc.conf
|
#su user
|
$cd /root/.ssh/
![]() bash: cd: /root/.ssh/: Permission denied |
$cd /root/.ssh/
![]() bash: cd: /root/.ssh/: Permission denied |
$less /root/.ssh/authorized_kyes
![]() |
$less /root/.ssh/authorized_kyes
![]() |
#/etc/networking restart
![]() bash: /etc/networking: No such file or directory |
#/etc/network restart
![]() bash: /etc/network: No such file or directory |
#/etc/network restart
![]() bash: /etc/network: No such file or directory |
#vim /etc/rc.conf
![]() --- /tmp/l3-saved-1933.19450.27276 2009-08-05 18:01:09.000000000 +0300 +++ /etc/rc.conf 2009-08-05 18:01:24.000000000 +0300 @@ -28,7 +28,7 @@ #natd_enable="YES" # ### Basic network and firewall/security options: ### -firewall_enable="YES" # Set to YES to enable firewall functionality +#firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall #firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) firewall_quiet="NO" # Set to YES to suppress rule display |
#vim /etc/rc.conf
--- /tmp/l3-saved-1933.19450.27276 2009-08-05 18:01:09.000000000 +0300 +++ /etc/rc.conf 2009-08-05 18:01:24.000000000 +0300 @@ -28,7 +28,7 @@ #natd_enable="YES" # ### Basic network and firewall/security options: ### -firewall_enable="YES" # Set to YES to enable firewall functionality +#firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall #firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) firewall_quiet="NO" # Set to YES to suppress rule display |
#/etc/netstart restart
![]() devd already running? (pid=665). lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> mtu 16384 inet6 fe80::1%lo0 prefixlen 64 scopeid 0x5 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 re0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500 options=1b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING> inet 192.168.16.24 netmask 0xffffff00 broadcast 192.168.16.255 ether 00:16:4e:00:00:04 media: Ethernet autoselect (100baseTX <full-duplex>) ... inet 192.168.54.1 netmask 0xffffffe0 broadcast 192.168.54.31 ether 00:16:4e:00:01:04 media: Ethernet autoselect (100baseTX <full-duplex>) status: active add net default: gateway 192.168.16.254 add net 192.168.54.32: gateway 192.168.54.30 add net 192.168.54.64: gateway 192.168.54.30 add net 192.168.54.96: gateway 192.168.54.30 add net 192.168.54.128: gateway 192.168.54.30 Additional routing options:. |
#/etc/netstart restart
devd already running? (pid=665). lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> mtu 16384 inet6 fe80::1%lo0 prefixlen 64 scopeid 0x5 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 re0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500 options=1b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING> inet 192.168.16.24 netmask 0xffffff00 broadcast 192.168.16.255 ether 00:16:4e:00:00:04 media: Ethernet autoselect (100baseTX <full-duplex>) ... inet 192.168.54.1 netmask 0xffffffe0 broadcast 192.168.54.31 ether 00:16:4e:00:01:04 media: Ethernet autoselect (100baseTX <full-duplex>) status: active add net default: gateway 192.168.16.254 add net 192.168.54.32: gateway 192.168.54.30 add net 192.168.54.64: gateway 192.168.54.30 add net 192.168.54.96: gateway 192.168.54.30 add net 192.168.54.128: gateway 192.168.54.30 Additional routing options:. |
#vim /etc/rc.conf
![]() |
#vim /etc/rc.conf
|
#vim /etc/rc.conf
![]() --- /tmp/l3-saved-1143.15313.8210 2009-08-05 18:05:41.000000000 +0300 +++ /etc/rc.conf 2009-08-05 18:06:34.000000000 +0300 @@ -28,9 +28,9 @@ #natd_enable="YES" # ### Basic network and firewall/security options: ### -#firewall_enable="YES" # Set to YES to enable firewall functionality +firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall -#firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) +firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) firewall_quiet="NO" # Set to YES to suppress rule display firewall_logging="NO" # Set to YES to enable events logging firewall_flags="" # Flags passed to ipfw when type is a file |
#vim /etc/rc.conf
--- /tmp/l3-saved-1143.15313.8210 2009-08-05 18:05:41.000000000 +0300 +++ /etc/rc.conf 2009-08-05 18:06:34.000000000 +0300 @@ -28,9 +28,9 @@ #natd_enable="YES" # ### Basic network and firewall/security options: ### -#firewall_enable="YES" # Set to YES to enable firewall functionality +firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall -#firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) +firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) firewall_quiet="NO" # Set to YES to suppress rule display firewall_logging="NO" # Set to YES to enable events logging firewall_flags="" # Flags passed to ipfw when type is a file |
#:q
![]() ipfw: getsockopt(IP_FW_GET): Protocol not available |
#:q
![]() ipfw: getsockopt(IP_FW_GET): Protocol not available |
#ipfw list
![]() ipfw: getsockopt(IP_FW_GET): Protocol not available |
#vi /root/.ssh/authorized_keys
![]() --- /tmp/l3-saved-1238.24283.20541 2009-08-05 18:06:57.000000000 +0300 +++ /root/.ssh/authorized_keys 2009-08-05 18:07:01.000000000 +0300 @@ -1,2 +1 @@ ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAxRllTs/EHbNaiMP6vWz1afItydSo1NRjTllP3RwiTE+qkdgG1hD2HeAAb+1Y916PZs5nKgmRN4BVkhKUh/9DxNd9YEOPKGXBvrb2NomaMIsO3N+e11COVyuzqT0AtJPqNWUWzR03QAnxb9UOdqH4DQzpJOwGQWm8gjqqwpEOxHD5OPm526pVgcwSYbcexehBaBdH+qlFF1chtGEKjUkli1Ixe3/XW/UdB3lQZm3jGTCFrssr2pdxz4Px2wvs1nqaCq2CMeDPbrle1MqiLUrKjROghuEgi18sFCuopytZn2XBxuZjpSdO8U8bk9Dnm9rle1JkHRTUQv9+MS2MojeYvw== root@debian -ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA0PmdB52TIqmX1vwlYxOBDqVIVXYb53IQnSMT3z/XG7S66Sm1+wmbaE/jzvamxPiRpyVCGQr+uE/u5CLEYPBxOlvjGLBfPqrpi6GuEhO8RgqFhGaG223/9sGzXk64MFsGVRD7lsurAoHhj72fuyDLugS59EA4HqYXN24jxwDkKPunC5LWYkhDE5IMiXUxpU7x/m2sKWAHWcHAJpc3448l6sNlkQymYcm1Ir5RkcbS3hOdF/ORnnTaaEgJe0bFphVI0Q+6WDjM0+U66dxaU4nl0NMbbjNjWefVAbv37rrV7b+T/NTCLC25oVf6jlKG0vD8KYyx7aMWTIisWeGLJZsuzw== root@fbsd5.net.nt |
#vi /root/.ssh/authorized_keys
--- /tmp/l3-saved-1238.24283.20541 2009-08-05 18:06:57.000000000 +0300 +++ /root/.ssh/authorized_keys 2009-08-05 18:07:01.000000000 +0300 @@ -1,2 +1 @@ ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAxRllTs/EHbNaiMP6vWz1afItydSo1NRjTllP3RwiTE+qkdgG1hD2HeAAb+1Y916PZs5nKgmRN4BVkhKUh/9DxNd9YEOPKGXBvrb2NomaMIsO3N+e11COVyuzqT0AtJPqNWUWzR03QAnxb9UOdqH4DQzpJOwGQWm8gjqqwpEOxHD5OPm526pVgcwSYbcexehBaBdH+qlFF1chtGEKjUkli1Ixe3/XW/UdB3lQZm3jGTCFrssr2pdxz4Px2wvs1nqaCq2CMeDPbrle1MqiLUrKjROghuEgi18sFCuopytZn2XBxuZjpSdO8U8bk9Dnm9rle1JkHRTUQv9+MS2MojeYvw== root@debian -ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA0PmdB52TIqmX1vwlYxOBDqVIVXYb53IQnSMT3z/XG7S66Sm1+wmbaE/jzvamxPiRpyVCGQr+uE/u5CLEYPBxOlvjGLBfPqrpi6GuEhO8RgqFhGaG223/9sGzXk64MFsGVRD7lsurAoHhj72fuyDLugS59EA4HqYXN24jxwDkKPunC5LWYkhDE5IMiXUxpU7x/m2sKWAHWcHAJpc3448l6sNlkQymYcm1Ir5RkcbS3hOdF/ORnnTaaEgJe0bFphVI0Q+6WDjM0+U66dxaU4nl0NMbbjNjWefVAbv37rrV7b+T/NTCLC25oVf6jlKG0vD8KYyx7aMWTIisWeGLJZsuzw== root@fbsd5.net.nt |
#vim /etc/rc.conf
![]() --- /tmp/l3-saved-1143.20861.16429 2009-08-05 18:07:11.000000000 +0300 +++ /etc/rc.conf 2009-08-05 18:08:18.000000000 +0300 @@ -22,16 +22,10 @@ route_54_128="-net 192.168.54.128/27 192.168.54.30" xinetd_enable="NO" # -#firewall_enable="YES" -#firewall_type="OPEN" -#firewall_script="/etc/rc.firewall -#natd_enable="YES" -# ### Basic network and firewall/security options: ### firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) -firewall_quiet="NO" # Set to YES to suppress rule display firewall_logging="NO" # Set to YES to enable events logging firewall_flags="" # Flags passed to ipfw when type is a file natd_enable="YES" # Enable natd (if firewall_enable == YES). |
#vim /etc/rc.conf
--- /tmp/l3-saved-1143.20861.16429 2009-08-05 18:07:11.000000000 +0300 +++ /etc/rc.conf 2009-08-05 18:08:18.000000000 +0300 @@ -22,16 +22,10 @@ route_54_128="-net 192.168.54.128/27 192.168.54.30" xinetd_enable="NO" # -#firewall_enable="YES" -#firewall_type="OPEN" -#firewall_script="/etc/rc.firewall -#natd_enable="YES" -# ### Basic network and firewall/security options: ### firewall_enable="YES" # Set to YES to enable firewall functionality firewall_script="/etc/ipfw.conf" # Which script to run to set up the firewall firewall_type="OPEN" # Firewall type (see /etc/rc.firewall) -firewall_quiet="NO" # Set to YES to suppress rule display firewall_logging="NO" # Set to YES to enable events logging firewall_flags="" # Flags passed to ipfw when type is a file natd_enable="YES" # Enable natd (if firewall_enable == YES). |
#sockstat
![]() USER COMMAND PID FD PROTO LOCAL ADDRESS FOREIGN ADDRESS root gnome-pty- 1104 0 stream -> ?? root gnome-pty- 1104 1 stream -> ?? root Terminal 1102 4 stream -> /var/tmp/dbus-w04SEEfqAD root Terminal 1102 5 stream -> /tmp/.X11-unix/X2 root Terminal 1102 8 stream -> ?? root xfce4-menu 1091 3 stream -> /tmp/.X11-unix/X2 root xfce4-pane 1090 3 stream -> /tmp/.X11-unix/X2 root xfce4-pane 1090 6 stream -> /tmp/.ICE-unix/1066 root dbus-daemo 1088 3 stream /var/tmp/dbus-w04SEEfqAD ... root sendmail 899 3 tcp4 127.0.0.1:25 *:* root sendmail 899 4 dgram -> /var/run/logpriv root sshd 893 3 tcp46 *:22 *:* root sshd 893 4 tcp4 *:22 *:* root syslogd 727 4 dgram /var/run/log root syslogd 727 5 dgram /var/run/logpriv root syslogd 727 6 udp6 *:514 *:* root syslogd 727 7 udp4 *:514 *:* root devd 665 4 stream /var/run/devd.pipe root moused 590 4 stream /var/run/devd.pipe |
#sockstat
USER COMMAND PID FD PROTO LOCAL ADDRESS FOREIGN ADDRESS root gnome-pty- 1104 0 stream -> ?? root gnome-pty- 1104 1 stream -> ?? root Terminal 1102 4 stream -> /var/tmp/dbus-w04SEEfqAD root Terminal 1102 5 stream -> /tmp/.X11-unix/X2 root Terminal 1102 8 stream -> ?? root xfce4-menu 1091 3 stream -> /tmp/.X11-unix/X2 root xfce4-pane 1090 3 stream -> /tmp/.X11-unix/X2 root xfce4-pane 1090 6 stream -> /tmp/.ICE-unix/1066 root dbus-daemo 1088 3 stream /var/tmp/dbus-w04SEEfqAD ... root sendmail 899 3 tcp4 127.0.0.1:25 *:* root sendmail 899 4 dgram -> /var/run/logpriv root sshd 893 3 tcp46 *:22 *:* root sshd 893 4 tcp4 *:22 *:* root syslogd 727 4 dgram /var/run/log root syslogd 727 5 dgram /var/run/logpriv root syslogd 727 6 udp6 *:514 *:* root syslogd 727 7 udp4 *:514 *:* root devd 665 4 stream /var/run/devd.pipe root moused 590 4 stream /var/run/devd.pipe |
#sockstat | less
![]() |
#sockstat | less
|
#vim /etc/ipfwf
![]() --- /tmp/l3-saved-1143.28458.21961 2009-08-05 18:09:35.000000000 +0300 +++ /etc/ipfw.conf 2009-08-05 21:12:32.000000000 +0300 @@ -1,3 +1,3 @@ -add allow ip from any to any -add allow tcp from any to any -add allow tcp from any to me 5902 +add 010 allow ip from any to any +add 020 allow tcp from any to any +add 030 allow tcp from any to any 5902 |
#vim /etc/ipfwf
--- /tmp/l3-saved-1143.28458.21961 2009-08-05 18:09:35.000000000 +0300 +++ /etc/ipfw.conf 2009-08-05 21:12:32.000000000 +0300 @@ -1,3 +1,3 @@ -add allow ip from any to any -add allow tcp from any to any -add allow tcp from any to me 5902 +add 010 allow ip from any to any +add 020 allow tcp from any to any +add 030 allow tcp from any to any 5902 |
#vim
![]() |
#vim
![]() |
#xhost +
![]() access control disabled, clients can connect from any host õ ×ÁÓ ÅÓÔØ ÎÏ×ÁÑ ÐÏÞÔÁ × /var/mail/root |
#xhost +
![]() access control disabled, clients can connect from any host õ ×ÁÓ ÅÓÔØ ÎÏ×ÁÑ ÐÏÞÔÁ × /var/mail/root |
#xhost +
access control disabled, clients can connect from any host õ ×ÁÓ ÅÓÔØ ÎÏ×ÁÑ ÐÏÞÔÁ × /var/mail/root |
#ssh user@192.168.16.7
![]() The authenticity of host '192.168.16.7 (192.168.16.7)' can't be established. DSA key fingerprint is 85:66:04:0d:64:83:45:f3:35:58:eb:35:cc:e5:92:50. Are you sure you want to continue connecting (yes/no)? yes Warning: Permanently added '192.168.16.7' (DSA) to the list of known hosts. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: |
#ssh user@192.168.16.7
![]() The authenticity of host '192.168.16.7 (192.168.16.7)' can't be established. DSA key fingerprint is 85:66:04:0d:64:83:45:f3:35:58:eb:35:cc:e5:92:50. Are you sure you want to continue connecting (yes/no)? yes Warning: Permanently added '192.168.16.7' (DSA) to the list of known hosts. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: |
#ssh user@192.168.16.7
![]() The authenticity of host '192.168.16.7 (192.168.16.7)' can't be established. DSA key fingerprint is 85:66:04:0d:64:83:45:f3:35:58:eb:35:cc:e5:92:50. Are you sure you want to continue connecting (yes/no)? yes Warning: Permanently added '192.168.16.7' (DSA) to the list of known hosts. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: |
#ssh user@192.168.16.7
![]() The authenticity of host '192.168.16.7 (192.168.16.7)' can't be established. DSA key fingerprint is 85:66:04:0d:64:83:45:f3:35:58:eb:35:cc:e5:92:50. Are you sure you want to continue connecting (yes/no)? yes Warning: Permanently added '192.168.16.7' (DSA) to the list of known hosts. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: |
#su user
![]() |
#su user
![]() |
#su user
![]() |
#su user
|
$ssh user@192.168.16.7
![]() user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Linux debiant 2.6.18-5-xen-686 #1 SMP Fri Jun 1 05:05:24 UTC 2007 i686 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. Last login: Wed Aug 5 18:14:16 2009 from fbsd26.net.nt l3-agent is already running: pid=1529; pidfile=/home/user/.lilalo/l3-agent.pid |
$ssh user@192.168.16.7
![]() user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Linux debiant 2.6.18-5-xen-686 #1 SMP Fri Jun 1 05:05:24 UTC 2007 i686 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. Last login: Wed Aug 5 18:14:16 2009 from fbsd26.net.nt l3-agent is already running: pid=1529; pidfile=/home/user/.lilalo/l3-agent.pid |
$ssh user@192.168.16.7
![]() user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Linux debiant 2.6.18-5-xen-686 #1 SMP Fri Jun 1 05:05:24 UTC 2007 i686 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. Last login: Wed Aug 5 18:14:16 2009 from fbsd26.net.nt l3-agent is already running: pid=1529; pidfile=/home/user/.lilalo/l3-agent.pid |
$ssh user@192.168.16.7
user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Permission denied, please try again. user@192.168.16.7's password: Linux debiant 2.6.18-5-xen-686 #1 SMP Fri Jun 1 05:05:24 UTC 2007 i686 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. Last login: Wed Aug 5 18:14:16 2009 from fbsd26.net.nt l3-agent is already running: pid=1529; pidfile=/home/user/.lilalo/l3-agent.pid |
#vim /etc/rc.firewall
|
#su user
![]() |
#su user
![]() |
#su user
|
$ssh 192.168.16.7
![]() user@192.168.16.7's password: Linux debiant 2.6.18-5-xen-686 #1 SMP Fri Jun 1 05:05:24 UTC 2007 i686 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. Last login: Wed Aug 5 18:27:53 2009 from 192.168.16.5 l3-agent is already running: pid=1529; pidfile=/home/user/.lilalo/l3-agent.pid |
$ssh 192.168.16.7
![]() user@192.168.16.7's password: Linux debiant 2.6.18-5-xen-686 #1 SMP Fri Jun 1 05:05:24 UTC 2007 i686 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. Last login: Wed Aug 5 18:27:53 2009 from 192.168.16.5 l3-agent is already running: pid=1529; pidfile=/home/user/.lilalo/l3-agent.pid |
$ssh 192.168.16.7
user@192.168.16.7's password: Linux debiant 2.6.18-5-xen-686 #1 SMP Fri Jun 1 05:05:24 UTC 2007 i686 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. Last login: Wed Aug 5 18:27:53 2009 from 192.168.16.5 l3-agent is already running: pid=1529; pidfile=/home/user/.lilalo/l3-agent.pid |
Время первой команды журнала | 20:31:03 2009- 8- 3 | ||||||||||||||||||||||||||||||||||||||||||||||||
Время последней команды журнала | 17:31:28 2009- 8- 5 | ||||||||||||||||||||||||||||||||||||||||||||||||
Количество командных строк в журнале | 101 | ||||||||||||||||||||||||||||||||||||||||||||||||
Процент команд с ненулевым кодом завершения, % | 15.84 | ||||||||||||||||||||||||||||||||||||||||||||||||
Процент синтаксически неверно набранных команд, % | 3.96 | ||||||||||||||||||||||||||||||||||||||||||||||||
Суммарное время работы с терминалом *, час | 0.68 | ||||||||||||||||||||||||||||||||||||||||||||||||
Количество командных строк в единицу времени, команда/мин | 2.47 | ||||||||||||||||||||||||||||||||||||||||||||||||
Частота использования команд |
|
В журнал автоматически попадают все команды, данные в любом терминале системы.
Для того чтобы убедиться, что журнал на текущем терминале ведётся, и команды записываются, дайте команду w. В поле WHAT, соответствующем текущему терминалу, должна быть указана программа script.
Команды, при наборе которых были допущены синтаксические ошибки, выводятся перечёркнутым текстом:
$ l s-l bash: l: command not found |
Если код завершения команды равен нулю, команда была выполнена без ошибок. Команды, код завершения которых отличен от нуля, выделяются цветом.
$ test 5 -lt 4 |
Команды, ход выполнения которых был прерван пользователем, выделяются цветом.
$ find / -name abc find: /home/devi-orig/.gnome2: Keine Berechtigung find: /home/devi-orig/.gnome2_private: Keine Berechtigung find: /home/devi-orig/.nautilus/metafiles: Keine Berechtigung find: /home/devi-orig/.metacity: Keine Berechtigung find: /home/devi-orig/.inkscape: Keine Berechtigung ^C |
Команды, выполненные с привилегиями суперпользователя, выделяются слева красной чертой.
# id uid=0(root) gid=0(root) Gruppen=0(root) |
Изменения, внесённые в текстовый файл с помощью редактора, запоминаются и показываются в журнале в формате ed. Строки, начинающиеся символом "<", удалены, а строки, начинающиеся символом ">" -- добавлены.
$ vi ~/.bashrc
|
Для того чтобы изменить файл в соответствии с показанными в диффшоте изменениями, можно воспользоваться командой patch. Нужно скопировать изменения, запустить программу patch, указав в качестве её аргумента файл, к которому применяются изменения, и всавить скопированный текст:
$ patch ~/.bashrc |
Для того чтобы получить краткую справочную информацию о команде, нужно подвести к ней мышь. Во всплывающей подсказке появится краткое описание команды.
Если справочная информация о команде есть, команда выделяется голубым фоном, например: vi. Если справочная информация отсутствует, команда выделяется розовым фоном, например: notepad.exe. Справочная информация может отсутствовать в том случае, если (1) команда введена неверно; (2) если распознавание команды LiLaLo выполнено неверно; (3) если информация о команде неизвестна LiLaLo. Последнее возможно для редких команд.
Большие, в особенности многострочные, всплывающие подсказки лучше всего показываются браузерами KDE Konqueror, Apple Safari и Microsoft Internet Explorer. В браузерах Mozilla и Firefox они отображаются не полностью, а вместо перевода строки выводится специальный символ.
Время ввода команды, показанное в журнале, соответствует времени начала ввода командной строки, которое равно тому моменту, когда на терминале появилось приглашение интерпретатора
Имя терминала, на котором была введена команда, показано в специальном блоке. Этот блок показывается только в том случае, если терминал текущей команды отличается от терминала предыдущей.
Вывод не интересующих вас в настоящий момент элементов журнала, таких как время, имя терминала и других, можно отключить. Для этого нужно воспользоваться формой управления журналом вверху страницы.
Небольшие комментарии к командам можно вставлять прямо из командной строки. Комментарий вводится прямо в командную строку, после символов #^ или #v. Символы ^ и v показывают направление выбора команды, к которой относится комментарий: ^ - к предыдущей, v - к следующей. Например, если в командной строке было введено:
$ whoami
user
$ #^ Интересно, кто я?в журнале это будет выглядеть так:
$ whoami
user
Интересно, кто я? |
Если комментарий содержит несколько строк, его можно вставить в журнал следующим образом:
$ whoami
user
$ cat > /dev/null #^ Интересно, кто я?
Программа whoami выводит имя пользователя, под которым мы зарегистрировались в системе. - Она не может ответить на вопрос о нашем назначении в этом мире.В журнале это будет выглядеть так:
$ whoami user
|
Комментарии, не относящиеся непосредственно ни к какой из команд, добавляются точно таким же способом, только вместо симолов #^ или #v нужно использовать символы #=
1 2 3 4Группы команд, выполненных на разных терминалах, разделяются специальной линией. Под этой линией в правом углу показано имя терминала, на котором выполнялись команды. Для того чтобы посмотреть команды только одного сенса, нужно щёкнуть по этому названию.
LiLaLo (L3) расшифровывается как Live Lab Log.
Программа разработана для повышения эффективности обучения Unix/Linux-системам.
(c) Игорь Чубин, 2004-2008